[squid-users] squid 4/5 feature request send login informations to peers

David Touzeau david at articatech.com
Tue Nov 17 08:27:09 UTC 2020


Hi,

We a first Squid using Kerberos + Active Directory authentication.
This first squid is used to limit access using ACls and Active Directory 
groups.

This first squid using parents as peer in order to access to internet in 
this way:

                              | --------> SQUID B ----------> Internet 1
squid A ------------->
                              | ---------> SQUID C ---------> Internet 2

1) We want using ACLs too ( for delegation purpose ) on Squid B and C
2) For legal logs purpose compliance.

In this case,  the username discovered in SQUIDA must be transmitted to 
SQUID B AND C and SQUID B-C must accept the information in order to use 
as login information to parse acls

Is it possible ?

If not: wee have seen that the Proxy protocol accept to transmit the 
source IP/login information to peers that are compliance with proxy 
protocol.
but the peers method in squid did not allow to use Proxy protocol.
Is it possible to add the "Proxy Protocol" support in peers method ?






-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.squid-cache.org/pipermail/squid-users/attachments/20201117/0f7ea16f/attachment.htm>


More information about the squid-users mailing list